CVE Tools

Extra Packages For Enterprise Linux

88 CVEs tracked. 1 of them are in CISA KEV.

This hub aggregates every CVE we track for Extra Packages For Enterprise Linux, a product in the operating systems space. Use it to gauge the current risk picture and drill into individual advisories.

Extra Packages For Enterprise Linux CVEs per month

Oct 2024 to Sep 2026. Point at a month, or focus the strip and use the arrow keys.
Extra Packages For Enterprise Linux CVEs per month
MonthCVEs
2024-100
2024-110
2024-120
2025-010
2025-020
2025-030
2025-040
2025-050
2025-060
2025-070
2025-080
2025-090
2025-100
2025-110
2025-120
2026-010
2026-020
2026-030
2026-040
2026-050
2026-060
2026-070
2026-080
2026-090

Severity

How the 88 CVEs score on CVSS. Severity is not exploitation: KEV is counted above.

  • Critical67%
  • High3135%
  • Medium4248%
  • Low910%

Latest CVEs

The 15 most recently published vulnerabilities affecting Extra Packages For Enterprise Linux.

  1. CVE-2021-4435Yarn: untrusted search path7.7
  2. CVE-2023-6395Mock: privilege escalation for users that can access mock configuration6.7
  3. CVE-2024-0232Sqlite: use-after-free bug in jsonparseaddnodearray4.7
  4. CVE-2023-51766Exim before 4.97.1 allows SMTP smuggling in certain PIPELINING/CHUNKING configurations. Remote attackers can use a published exploitation technique to inject e-mail messages with a spoofed MAIL FRO...5.3
  5. CVE-2023-4255W3m: out-of-bounds write in function checktype() in etc.c (incomplete fix for cve-2022-38223)5.5
  6. CVE-2023-4256Tcpreplay: tcprewrite: double free in tcpedit_dlt_cleanup() in plugins/dlt_plugins.c5.5
  7. CVE-2023-3430Openimageio: heap-buffer-overflow in file src/gif.imageio/gifinput.cpp7.5
  8. CVE-2023-5764Ansible: template injection7.1
  9. CVE-2023-5341Imagemagick: heap use-after-free in coders/bmp.c6.2
  10. CVE-2023-5543Moodle: duplicating a bigbluebutton activity assigns the same meeting id3.3
  11. CVE-2023-5551Moodle: forum summary report shows students from other groups when in separate groups mode3.3
  12. CVE-2023-5550Moodle: rce due to lfi risk in some misconfigured shared hosting environments6.5
  13. CVE-2023-5549Moodle: insufficient capability checks when updating the parent of a course category3.3
  14. CVE-2023-5548Moodle: cache poisoning risk with endpoint revision numbers3.3
  15. CVE-2023-5545Moodle: auto-populated h5p author name causes a potential information leak3.3

Product grouping is registry-driven, with AI assist and human review. How it works

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store